Vulnerabilities > WP Survey Plus Project

DATE CVE VULNERABILITY TITLE RISK
2021-11-08 CVE-2021-24801 Cross-site Scripting vulnerability in WP Survey Plus Project WP Survey Plus 1.0
The WP Survey Plus WordPress plugin through 1.0 does not have any authorisation and CSRF checks in place in its AJAX actions, allowing any user to call them and add/edit/delete Surveys.
network
low complexity
wp-survey-plus-project CWE-79
4.3